Re: Generating keys for ntpdc control
- From: "Bob" <bobsjunkmail@xxxxxxxxxxxxx>
- Date: Fri, 4 Jul 2008 15:13:50 -0400
"Steve Kostecke" <kostecke@xxxxxxx> wrote in message
news:slrng6sdqh.lip.kostecke@xxxxxxxxxxxxxxxxxxxxxx
On 2008-07-04, Bob <bobsjunkmail@xxxxxxxxxxxxx> wrote:The Windows version does not. It asks for keyid, and when entered, moves to
that ntpdc is supposed to prompt for a password.
It has to.
a new line with no prompt.
It is possible that ntpdc is not seeing the password you typed in.
After getting past the key file content, and ntp.conf issue, what I finally
figured out is that ntpdc will remember that it got a "permission denied",
and no further attempts will be made without stopping and restarting it.
None of the following is germane to your symmetric key issue, but ...
keys "C:\Program Files\NTP\etc\ntp.keys"
enable auth
Auth is enabled by default. It can be disabled on the command-line. The
worst that can happen is this line will generate an extra log entry.
I disabled auth earlier this week, and promptly got attacked. I did an
enable auth with the intention of reversing my disable auth.
This minpoll/maxpoll combination means that you are polling this server
every 16 seconds. That's generally considered to be "unfriendly" unless
it's your server.
Agreed... REAL unfriendly! It is a Truetime NTS-100. I can't use it
directly as my publicly visible server because of some firmware bugs in it
where it's ntp output isn't universaly liked by clients. Also, sending
packets to these too quickly - several per second - puts them to sleep.
ntpd has been designed to choose the correct poll interval to strike a
balance between quick short term correction and long term stability. It
is generally considered better to allow ntpd to manage the poll
interval.
The shorter poll interval seems to smooth out the Windows induced timing
variations. I've tried it with no special instructions, and the offset
variation seems smaller. This server (NTS-100) is favored as the selected
clock because it's got ~0 round trip time, and it's got little jitter.
--
Steve Kostecke <kostecke@xxxxxxx>
NTP Public Services Project - http://support.ntp.org/
.
- Follow-Ups:
- Re: Generating keys for ntpdc control
- From: Per Hedeland
- Re: Generating keys for ntpdc control
- References:
- Generating keys for ntpdc control
- From: Bob
- Re: Generating keys for ntpdc control
- From: Martin Burnicki
- Re: Generating keys for ntpdc control
- From: Steve Kostecke
- Re: Generating keys for ntpdc control
- From: Bob
- Re: Generating keys for ntpdc control
- From: Steve Kostecke
- Re: Generating keys for ntpdc control
- From: Bob
- Re: Generating keys for ntpdc control
- From: Steve Kostecke
- Generating keys for ntpdc control
- Prev by Date: Re: Public remote RNG server service on the net
- Next by Date: Re: Generating keys for ntpdc control
- Previous by thread: Re: Generating keys for ntpdc control
- Next by thread: Re: Generating keys for ntpdc control
- Index(es):
Relevant Pages
|